Web Exploitation Framework

Several web application security centric frameworks have come and gone that were intended to address this challenge. The goal of Web Exploitation Framework (wXf) is to take the experience of using these tools, the perceived shortcomings and build something that is easy to use, install and extend. 

Web Exploitation Framework (“wXf”) is written in Ruby and was originally an idea as a module for Rapid 7’s Metasploit but the idea quickly outgrew a network exploitation framework. Instead, we designed a core that focuses on the web standards along with exploits & payloads designed specifically for defeating web application protections. wXf maintains somewhat of the look and feel of Metasploit but the code is entirely different. Our goal is to have a security professional familiar with the Metasploit framework using wXf in under 10 minutes.
 

Download: https://github.com/WebExploitationFramework 

原来是这个,现在这个地址找不到wxf了,不过我找到了另一个地址:https://github.com/forced-request/wXf

More info: Web Exploitation Framework with Ken Johnson, Fishnet Security and Chris Gates, No Affiliation.